Vulnerabilities > CVE-2004-0171 - Remote Denial Of Service vulnerability in BSD Out Of Sequence Packets
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
PARTIAL Summary
FreeBSD 5.1 and earlier, and Mac OS X before 10.3.4, allows remote attackers to cause a denial of service (resource exhaustion of memory buffers and system crash) via a large number of out-of-sequence TCP packets, which prevents the operating system from creating new connections.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 7 | |
OS | 2 |
Nessus
NASL family FreeBSD Local Security Checks NASL id FREEBSD_OUTOFSEQ_TCP_PACKETS_DOS.NASL description The remote host is running a version of the FreeBSD kernel which may be vulnerable to a remote denial of service attack when processing many out of sequence TCP packets. last seen 2020-06-01 modified 2020-06-02 plugin id 12589 published 2004-07-06 reporter This script is Copyright (C) 2004-2011 Tenable Network Security, Inc. source https://www.tenable.com/plugins/nessus/12589 title FreeBSD : SA-04:04.tcp NASL family MacOS X Local Security Checks NASL id MACOSX_MULTIPLE_VULNS.NASL description The remote host is running a version of Mac OS X that is older than 10.3.4. Such versions contain several flaws that may allow an attacker to execute arbitrary commands on the remote system with root privileges. last seen 2020-06-01 modified 2020-06-02 plugin id 12257 published 2004-06-01 reporter This script is Copyright (C) 2004-2018 Tenable Network Security, Inc. source https://www.tenable.com/plugins/nessus/12257 title Mac OS X < 10.3.4 Multiple Vulnerabilities
References
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:04.tcp.asc
- http://lists.seifried.org/pipermail/security/2004-May/003743.html
- http://www.idefense.com/application/poi/display?id=78&type=vulnerabilities
- http://www.kb.cert.org/vuls/id/395670
- http://www.osvdb.org/4124
- http://www.securityfocus.com/bid/9792
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15369